CVE-2013-7446

Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernelbefore 4.3.3 allows local users to bypass intended AF_UNIX socketpermissions or cause a denial of service (panic) via crafted epoll_ctlcalls.

Ubuntu-Description

It was discovered that a use-after-free vulnerability existed in theAF_UNIX implementation in the Linux kernel. A local attacker could usecrafted epoll_ctl calls to cause a denial of service (system crash) orexpose sensitive information.

android kernels (flo, goldfish, grouper, maguro, mako and manta) are
not supported on the Ubuntu Touch 14.10 and earlier preview kernels
linux-lts-saucy no longer receives official support
linux-lts-quantal no longer receives official support